Re: Restricting RadiusNT users to RRAS ports

Dale Reed ( daler@iea-software.com )
Sun, 28 Jun 1998 19:02:38 -0700

janjic@simt.com.mk wrote:
>
> MS RRAS logs the events on my four V.24 dial-in ports with the port
> designation COM1 - COM4. It is the only NAS I have. RadiusNT 2.2 in text
> mode runs on a different NT Server.
> Is there a way to restrict users to particular ports, and if so, please
> suggest me how.
> I know that this is more Radius question, not sth. specific to RadiusNT,
> but unfortunately I am not familiar with the Radius specification.

To restrict a user to specific port, add the NAS-Port attribute to
the first line of the user entry, matching whatever the NAS-Port
attribute RRAS sends in the authentication or accounting requests.
For example:

user Password = "blah", NAS-Port = 2
User-Service = Framed-User
Framed-Protocol = PPP

and so one with the reply list attributes you want.

-- Dale E. Reed Jr.  (daler@iea-software.com)_________________________________________________________________       IEA Software, Inc.      |  RadiusNT, Emerald, and NT FAQs Internet Solutions for Today  |   http://www.iea-software.com